A vulnerability was discovered in Autonomy KeyView, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
Vulnerable Systems:
* Autonomy KeyView version 10.4
* Autonomy KeyView version 10.9
The vulnerability is caused by an integer underflow error in the SpreadSheet Lotus 123 reader (wkssr.dll) when parsing the size of a specific record type. This can be exploited to cause a heap-based buffer overflow via a specially crafted file. Successful exploitation may allow execution of arbitrary code.
Patch Availability:
Apply patches available from the vendor.